Adaptive system and method for responding to computer network security attacks

作者: James T. Lynn , Douglas W. Hill

DOI:

关键词:

摘要: A dynamic network security system (20) responds to a attack (92) on computer (22) having multiplicity of nodes (24). The includes plurality agents (36) that concurrently detect occurrences events (50) associated processor (40) processes the are received from form an signature (94) (92). status display (42) displays multi-dimensional information representing in two dimensional image indicate overall nature and severity also list recommended actions (112) for mitigating attack. is adapted respond subsequent has most closely resembling (94).

参考文章(8)
Bjorn Larson, Thomas Pickett, User programmable computer monitoring system ,(1990)
Jun'ichi Kurihara, Ikuo Kimura, Toshio Hirosawa, Hideki Nanba, Monitoring and controlling system and method for data processing system ,(1990)
David A. Glowny, Caryl M. Rahn, Jerry C. Thomas, John C. Kistenmacher, System and method for remote workstation monitoring within a distributed computing environment ,(1995)
David M. Chess, Jeffrey O. Kephart, William C. Arnold, Steven R. White, Automatic immune system for computers and computer networks ,(1993)
Anastasia Doumas, Konstantinos Mavroudakis, Dimitris Gritzalis, Sokratis Katsikas, Refereed paper: Design of a neural network for recognition and classification of computer viruses Computers & Security. ,vol. 14, pp. 435- 448 ,(1995) , 10.1016/0167-4048(95)00008-V
John G. Waclawsky, Stephen M. Matyas, Paul C. Hershey, Donald B. Johnson, An V. Le, John D. Wilkins, Network security system and method using a parallel finite state machine adaptive active monitor and responder ,(1993)